[infinispan-issues] [JBoss JIRA] (ISPN-6447) Upgrade to XStream 1.4.9

Sebastian Łaskawiec (JIRA) issues at jboss.org
Fri Apr 1 08:59:01 EDT 2016


     [ https://issues.jboss.org/browse/ISPN-6447?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Sebastian Łaskawiec updated ISPN-6447:
--------------------------------------
        Status: Resolved  (was: Pull Request Sent)
    Resolution: Done


> Upgrade to XStream 1.4.9
> ------------------------
>
>                 Key: ISPN-6447
>                 URL: https://issues.jboss.org/browse/ISPN-6447
>             Project: Infinispan
>          Issue Type: Component  Upgrade
>          Components: Remote Protocols, Server
>    Affects Versions: 8.2.0.Final, 8.1.2.Final
>            Reporter: Tristan Tarrant
>            Assignee: Tristan Tarrant
>             Fix For: 8.1.3.Final, 8.2.1.Final, 9.0.0.Alpha1, 9.0.0.Final
>
>
> XStream < 1.4.9 is vulernable to XXE



--
This message was sent by Atlassian JIRA
(v6.4.11#64026)



More information about the infinispan-issues mailing list